[sudo-workers] [patch] to add support for BSM audit records

Todd C. Miller Todd.Miller at courtesan.com
Sun Nov 30 17:49:22 EST 2008


In message <20081128022748.GA23986 at jnz.sqrt.ca>
	so spake Christian Peron (csjp):

> I would like to propose a patch to add BSM audit support to sudo.  This patch
> and associated files adds support for the Sun's Basic Security Module (BSM)
> Audit API and file format.  It should be noted that currently FreeBSD, OS X
> and Solaris use BSM.  I have not tested on Solaris or OS X but, this patch
> should build on both.  This is a starting point, it's possible that I could
> be missing some key error conditions which require auditing.

As luck would have it I was reviewing the Apple BSD audit patches
recently.  It's too late for this to go into sudo 1.7.0 but I'd
like to have official support for BSM and Linux auditing in version
1.7.1.

I don't see the bsm_audit.c file in your diff, BTW.

 - todd



More information about the sudo-workers mailing list